CN106133739B - 数据到安全元件的非易失性存储器中的加载的安全保护 - Google Patents

数据到安全元件的非易失性存储器中的加载的安全保护 Download PDF

Info

Publication number
CN106133739B
CN106133739B CN201580015759.XA CN201580015759A CN106133739B CN 106133739 B CN106133739 B CN 106133739B CN 201580015759 A CN201580015759 A CN 201580015759A CN 106133739 B CN106133739 B CN 106133739B
Authority
CN
China
Prior art keywords
storage area
secure element
code storage
data
signature
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201580015759.XA
Other languages
English (en)
Chinese (zh)
Other versions
CN106133739A (zh
Inventor
S·尼罗特
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Ai Demiyafaguo
Original Assignee
Oberthur Technologies SA
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Oberthur Technologies SA filed Critical Oberthur Technologies SA
Publication of CN106133739A publication Critical patent/CN106133739A/zh
Application granted granted Critical
Publication of CN106133739B publication Critical patent/CN106133739B/zh
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/50Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
    • G06F21/51Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems at application loading time, e.g. accepting, rejecting, starting or inhibiting executable software based on integrity or source reliability
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/50Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
    • G06F21/57Certifying or maintaining trusted computer platforms, e.g. secure boots or power-downs, version controls, system software checks, secure updates or assessing vulnerabilities
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/64Protecting data integrity, e.g. using checksums, certificates or signatures
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/70Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer
    • G06F21/71Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer to assure secure computing or processing of information
    • G06F21/77Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer to assure secure computing or processing of information in smart cards
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W8/00Network data management
    • H04W8/22Processing or transfer of terminal data, e.g. status or physical capabilities
    • H04W8/24Transfer of terminal data
    • H04W8/245Transfer of terminal data from a network towards a terminal

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Theoretical Computer Science (AREA)
  • Computer Hardware Design (AREA)
  • Software Systems (AREA)
  • Physics & Mathematics (AREA)
  • General Engineering & Computer Science (AREA)
  • General Physics & Mathematics (AREA)
  • General Health & Medical Sciences (AREA)
  • Bioethics (AREA)
  • Health & Medical Sciences (AREA)
  • Mathematical Physics (AREA)
  • Storage Device Security (AREA)
  • Stored Programmes (AREA)
CN201580015759.XA 2014-03-25 2015-03-25 数据到安全元件的非易失性存储器中的加载的安全保护 Active CN106133739B (zh)

Applications Claiming Priority (3)

Application Number Priority Date Filing Date Title
FR1452519 2014-03-25
FR1452519A FR3019347B1 (fr) 2014-03-25 2014-03-25 Securisation du chargement de donnees dans une memoire non-volatile d'un element securise
PCT/FR2015/050758 WO2015145071A1 (fr) 2014-03-25 2015-03-25 Sécurisation du chargement de données dans une mémoire non-volatile d'un élément sécurisé

Publications (2)

Publication Number Publication Date
CN106133739A CN106133739A (zh) 2016-11-16
CN106133739B true CN106133739B (zh) 2020-03-17

Family

ID=50780770

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201580015759.XA Active CN106133739B (zh) 2014-03-25 2015-03-25 数据到安全元件的非易失性存储器中的加载的安全保护

Country Status (9)

Country Link
US (1) US10268845B2 (fr)
EP (1) EP3123387B1 (fr)
JP (1) JP6585072B2 (fr)
KR (1) KR102036411B1 (fr)
CN (1) CN106133739B (fr)
ES (1) ES2734370T3 (fr)
FR (1) FR3019347B1 (fr)
PL (1) PL3123387T3 (fr)
WO (1) WO2015145071A1 (fr)

Families Citing this family (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP3086254A1 (fr) * 2015-04-22 2016-10-26 Gemalto Sa Procédé pour gérer les applications d'un élément sécurisé durant l'actualisation du système opérationnel
KR102453705B1 (ko) * 2015-09-25 2022-10-11 삼성전자주식회사 호스트의 정당성 여부에 따라 선택적으로 결제 기능을 온(on)하는 결제 장치의 동작 방법
KR102538096B1 (ko) * 2016-09-13 2023-05-31 삼성전자주식회사 어플리케이션을 검증하는 디바이스 및 방법
US10911939B2 (en) * 2017-06-14 2021-02-02 Huawei Technologies Co., Ltd. Embedded universal integrated circuit card profile management method and apparatus
JP6949416B2 (ja) * 2017-07-13 2021-10-13 株式会社デンソー 電子制御装置、プログラム改ざん検知方法
DE102017006950A1 (de) * 2017-07-21 2019-01-24 Giesecke+Devrient Mobile Security Gmbh Aufrechterhaltung einer Netzwerkverbindung
CN110326266B (zh) 2017-09-18 2020-12-04 华为技术有限公司 一种数据处理的方法及装置
GB2579034B (en) * 2018-11-15 2021-05-05 Trustonic Ltd Software installation method
FR3105853B1 (fr) * 2019-12-31 2023-01-06 Proton World Int Nv Système embarqué
KR102481272B1 (ko) * 2020-11-17 2022-12-26 오토아이티(주) 보안성 및 신뢰성이 향상된 자동 실행 스크립트 파일의 생성 장치 및 방법과, 이의 실행 장치 및 방법
FR3118218B1 (fr) * 2020-12-21 2024-02-16 St Microelectronics Rousset Procédé pour valider un module logiciel externe en vue de son utilisation par un système sur une puce

Family Cites Families (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6233683B1 (en) * 1997-03-24 2001-05-15 Visa International Service Association System and method for a multi-application smart card which can facilitate a post-issuance download of an application onto the smart card
JP2000322253A (ja) * 1999-05-14 2000-11-24 Namco Ltd セキュリティ・システム
CA2400204C (fr) * 2000-02-17 2011-04-19 General Instrument Corporation Procede et appareil destines a fournir un controle securise de telechargement de logiciel ou de code microprocesseur et un fonctionnement securise d'un dispositif informatique recevant un code telecharge
JP4186466B2 (ja) * 2002-01-16 2008-11-26 ソニー株式会社 コンテンツ配信システム、コンテンツ配信方法、および情報処理装置、並びにコンピュータ・プログラム
JP4736370B2 (ja) * 2004-07-27 2011-07-27 株式会社日立製作所 ホスティング環境構築方法および計算機システム
KR100617904B1 (ko) * 2005-07-21 2006-08-30 주식회사 하이스마텍 스마트카드에 복수의 카드식별정보를 설치 및 관리할 수있는 스마트카드 관리시스템 및 그 방법
US8239686B1 (en) * 2006-04-27 2012-08-07 Vudu, Inc. Method and system for protecting against the execution of unauthorized software
KR20090040246A (ko) * 2006-08-10 2009-04-23 파나소닉 주식회사 메모리 컨트롤러, 보안 메모리 카드, 및 보안 메모리 카드시스템
WO2012127266A1 (fr) * 2011-03-23 2012-09-27 Sandisk Il Ltd. Dispositif de stockage et procédé de mise à jour des données dans une partition du dispositif de stockage
US20120324446A1 (en) * 2011-06-17 2012-12-20 Microsoft Corporation Virtual machine image composition and signing
FR2993682B1 (fr) 2012-07-20 2014-08-22 Oberthur Technologies Mise a jour d'un systeme d'exploitation pour element securise

Also Published As

Publication number Publication date
PL3123387T4 (pl) 2019-09-30
EP3123387B1 (fr) 2019-03-13
ES2734370T3 (es) 2019-12-05
EP3123387A1 (fr) 2017-02-01
KR102036411B1 (ko) 2019-10-24
FR3019347B1 (fr) 2017-07-21
US10268845B2 (en) 2019-04-23
US20170109546A1 (en) 2017-04-20
PL3123387T3 (pl) 2019-09-30
JP6585072B2 (ja) 2019-10-02
KR20160136386A (ko) 2016-11-29
FR3019347A1 (fr) 2015-10-02
WO2015145071A1 (fr) 2015-10-01
CN106133739A (zh) 2016-11-16
JP2017509082A (ja) 2017-03-30

Similar Documents

Publication Publication Date Title
CN106133739B (zh) 数据到安全元件的非易失性存储器中的加载的安全保护
EP2704053B1 (fr) Procédé et système de mise à jour d'un micrologiciel d'un module de sécurité
TWI510959B (zh) 更新用於安全裝置之操作系統
KR101299099B1 (ko) 임베디드 시스템에서 최적화된 가상화 모듈을 관리하는 장치 및 방법
US11340885B2 (en) Method and apparatus for updating operating system
CN110326266B (zh) 一种数据处理的方法及装置
US9344406B2 (en) Information processing device, information processing method, and computer program product
US10248795B2 (en) Implementing method for JavaCard application function expansion
CN105393571A (zh) 用于操作安全元件的方法
CN111177709A (zh) 一种终端可信组件的执行方法、装置及计算机设备
CN105187410A (zh) 一种应用的自升级方法及其系统
KR20230019032A (ko) 사전 개인화된 보안 요소 및 내장된 개인화
CN114925368A (zh) 用于启动应用程序的安全元件和方法
US10489775B2 (en) Integrated circuit card adapted to transfer first data from a first application for use by a second application
KR20130058527A (ko) 어플리케이션 보안 시스템 및 방법, 이를 위한 통신 단말기
CN112416407A (zh) 一种软件升级方法、装置、设备和计算机可读存储介质
JP2006338311A (ja) 複数のアプリケーションを搭載したデバイスを処理するコンピュータシステム、デバイスおよびコンピュータプログラム
CN104426894A (zh) 一种终端应用的注册方法、业务平台设备及终端
EP3825881B1 (fr) Gestion de la personnalisation dans un dispositif implémentant un environnement java card
KR20220059866A (ko) 보안 부트 검증 방법 및 이를 위한 보안 칩
CN111970124A (zh) 计算机工厂模式控制方法、装置、计算机设备和存储介质
CN114091008A (zh) 用于对控制设备进行安全更新的方法
CN117708896A (zh) 用于保护嵌入式设备固件数据的方法以及嵌入式设备
CN116088885A (zh) 操作系统更新方法、装置、通用集成电路卡及存储介质
CN113127839A (zh) 基于se的安全访问方法、装置及存储介质

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant
CP03 Change of name, title or address
CP03 Change of name, title or address

Address after: Courbevoi, France

Patentee after: Ai Demiyafaguo

Address before: Fa Guokelongbu

Patentee before: OBERTHUR TECHNOLOGIES